THREAT OPS › Threat News › [medusalocker] Servifruit posted to leak site
[medusalocker] Servifruit posted to leak site
Ransomware group: medusalocker Victim: Servifruit Victim website: servifruit.com Sector: Agriculture and Food Production Country: MX Discovered: 2026-08-27T06:28:05.008284+00:00 Leak-site post: http://t33zoj4qwv455fog7qnb2azi5xcdxkixughmmduzbw2rtdgryqfbh6id.onion/company/baoalah/ Description: Organization with 195 emails extracted. Domain: servifruit.com Note: leak-site listings typically precede
Indicators of compromise
- servifruit.comdomain
- http://t33zoj4qwv455fog7qnb2azi5xcdxkixughmmduzbw2rtdgryqfbh6id.onion/company/baoalah/url